Amazon IAM Identity Center now supports multi-Region support in Amazon Web Services China Regions
Amazon IAM Identity Center helps you connect your workforce identities to Amazon Web Services once and streamline access management to Amazon Web Services applications and accounts. You can now enable multi-Region support in the Amazon Web Services China (Beijing) Region, operated by Sinnet, and the Amazon Web Services China (Ningxia) Region, operated by NWCD. This helps you improve the resilience of user access to your Amazon Web Services accounts and deploy Amazon Web Services applications in the Region that best aligns with your business needs.
When you enable multi-Region support, Amazon IAM Identity Center automatically replicates your identities, entitlements, and other information from the primary Region, where you enabled Amazon IAM Identity Center, to an additional Region. If Amazon IAM Identity Center is affected by a disruption in the primary Region, your users continue to have access to their Amazon Web Services accounts using the already provisioned entitlements in the additional Region. Amazon Web Services application administrators can use the standard application deployment workflow to deploy their application in an additional Region while you continue to administer Amazon IAM Identity Center in the primary Region.
Amazon IAM Identity Center multi-Region support is available for organization instances using either an external identity provider or the Amazon IAM Identity Center directory as the identity source, and requires a multi-Region customer managed KMS key (CMK). It can be enabled with a single click in new Amazon IAM Identity Center instances. Standard Amazon KMS charges apply for storing and using CMKs. To learn more about multi-Region support, see Using IAM Identity Center across multiple Amazon Web Services Regions.